CVE-2018-18909

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT

Description

xhEditor 1.2.2 allows XSS via JavaScript code in the SRC attribute of an IFRAME element within the editor's source-code view.

xhEditor是一个基于jQuery开发的简单迷你并且高效的在线可视化HTML编辑器。
GitHubGitHub
247